DNSFilter Joins the World Economic Forum-hosted Cybercrime Atlas as a Community Member

Listen to this article instead
4:42

 

Strengthening the global fight against cybercrime through shared intelligence and cross-sector collaboration

DNSFilter is proud to announce that we have formally joined the World Economic Forum-hosted Cybercrime Atlas as a community member. This commitment places DNSFilter alongside global law enforcement agencies, private-sector security leaders, and international research organizations working together to map, disrupt, and dismantle the criminal networks behind today's most damaging cyber threats.

ca_colour

 

 

 

What is the Cybercrime Atlas?

The Cybercrime Atlas is a collaborative research initiative hosted at the World Economic Forum Centre for Cybersecurity, born from the recognition that fragmented, siloed responses to cybercrime were failing to keep pace with increasingly organized and borderless criminal networks.

Atlas community members participate in weekly threat actor hunts, contribute to joint research and intelligence packages, and collaborate in working groups focused on policy, tooling, and disruption strategy. Insights generated through the Atlas have supported major international law enforcement operations, including INTERPOL-led campaigns that resulted in thousands of arrests and the recovery of over $140 million across multiple countries.

At its core, the Atlas operates on a simple but powerful premise: Cybercriminals share infrastructure, tools, and playbooks across borders. Defenders need to do the same.

Why this matters

Cybercrime no longer respects borders, sectors, or jurisdictions. A phishing kit hosted in one region can compromise users on six continents within hours. A single ransomware affiliate program can siphon millions from hospitals, schools, and small businesses before law enforcement can pinpoint a single suspect.

The challenge isn't a lack of talent or technology—it's fragmentation. Knowledge about cybercriminal operations is scattered across vendors, agencies, and geographies. Responses are localized even though the threats are transnational. The Cybercrime Atlas exists to close that gap by creating a shared, actionable picture of the cybercrime landscape: Who the actors are, how they operate, where their infrastructure overlaps, and where coordinated action can do the most damage to their operations.

What DNSFilter brings to the Atlas community

DNSFilter protects more than 30,000 organizations and tens of millions of users worldwide from phishing, malware, ransomware, and other DNS-layer threats. Every time a device makes a DNS request, our AI-driven detection engine evaluates it in real time—identifying malicious domains, newly staged phishing infrastructure, and command-and-control callbacks often before they appear in conventional threat feeds.

That vantage point is uniquely valuable to an initiative like the Cybercrime Atlas. DNS is foundational infrastructure for cybercriminals. Threat actors register domains, stand up phishing pages, rotate command-and-control servers, and funnel stolen data through DNS queries. By contributing DNS-layer intelligence to the Atlas community, DNSFilter adds an early-warning dimension that complements the investigative, financial, and endpoint-level expertise already represented in the group.

As part of the Cybercrime Atlas community, DNSFilter will contribute:

  • DNS-layer threat intelligence on newly observed malicious infrastructure, including domains associated with phishing campaigns, malware distribution, and C2 communication
  • Pattern analysis from our global resolver network, surfacing trends in how threat actors build and rotate infrastructure
  • Threat hunting expertise from our internal research and detection teams, who track emerging threats daily
  • Collaborative investigation support connecting DNS-level signals to the broader actor and campaign mapping the Atlas community produces
  • In return, we gain access to the collective intelligence, investigative leads, and trusted cross-sector relationships that make the Atlas one of the most ambitious cybercrime disruption efforts in the world.

What our leaders are saying

"Cybercrime is a global threat, and the only durable response is global collaboration. Joining the WEF Cybercrime Atlas formalizes something we already believe at our core: That protecting customers means contributing to a defender community far larger than any single vendor. The Atlas brings together the right mix of operators, investigators, and policy leaders to turn shared intelligence into coordinated action, and DNSFilter is committed to pulling our weight inside that community."

TK Keanini, Chief Technology Officer, DNSFilter


"Threat hunting is a multi-disciplined blend of art and science that works best when researchers come together to share notes, techniques, and adversary tactics to deliver results that are greater than the sum of their parts. The DNS visibility available to DNSFilter’s security personnel is unparalleled, and the insights we can derive from analysis of that data are of exceptional value to our many partners. The Cybercrime Atlas is more than just a trusted forum of international experts, it is a melting pot of talent and expertise unmatched in its class and DNSFilter is honored to support both the organization and its mission. Truly, there are few things a cadre of the Cybercrime Atlas’s caliber, which pairs world-class investigators together with all the orchestral intuition of a born maestro, cannot accomplish when driven by such incredible focus and under such capable leadership.”

Kasey Best, Senior Director of Threat Hunting, DNSFilter


"The Cybercrime Atlas brings together world-leading experts to generate actionable insights into cybercriminal networks and strengthen cooperation between the public and private sectors. DNSFilter's real-time DNS threat intelligence adds valuable visibility into the infrastructure cybercriminals rely on to operate."

Sean Doyle, Lead of the Cybercrime Atlas, World Economic Forum Centre for Cybersecurity


Looking ahead

Joining the Cybercrime Atlas is one step in a broader DNSFilter commitment to community-driven defense. We will continue to publish threat research, contribute to industry working groups, and invest in the relationships that make collective security possible. The threats are evolving—and so is the way defenders work together to stop them.

Learn more about the World Economic Forum-hosted Cybercrime Atlas.

Try DNSFilter free for 14 days.

Search
  • There are no suggestions because the search field is empty.
Latest posts
DNSFilter Joins the World Economic Forum-hosted Cybercrime Atlas as a Community Member DNSFilter Joins the World Economic Forum-hosted Cybercrime Atlas as a Community Member

Strengthening the global fight against cybercrime through shared intelligence and cross-sector collaboration

CyberSight Gets Sharper: Threat Trends and Timeline Now Available CyberSight Gets Sharper: Threat Trends and Timeline Now Available

When we launched CyberSight in March, the goal was clear: close the visibility gap between what DNS logs show and what users actually do. Activity logs, full URL tracking, application usage, device state—the data security teams need but haven't had from their DNS provider.

We've Gone to the Dark (Mode) Side We've Gone to the Dark (Mode) Side

A long time ago, in a dashboard far, far away...your eyes were suffering.

We know. We've heard about it since 2019: 270 of you voted for Dark Mode on our feature request board. Some of you left comments. One of you simply wrote: "So much white... Need dark mode please!" Honestly? Fair.

Explore More Content

Ready to brush up on something new? We've got even more for you to discover.